Son güncelleme: 10 Ekim 2026 · Sürüm: davetli erken erişim 1
Tavla Capture, davetli erken erişim döneminde bireysel bir geliştirici tarafından işletilmektedir. Verilerinizle ilgili her konuda: cemgnr46@gmail.com
| Veri | Ne zaman | Not |
|---|---|---|
| Davet kodu | Kayıtta | Sunucuda kodun kendisi değil yalnızca özeti (hash) tutulur. Davet kaydına yalnızca bizim girdiğimiz bir etiket (ör. kişi/ekip adı) eklenmiş olabilir. |
| Cihaz kaydı: platform (iOS/Android), cihaz modeli, işletim sistemi sürümü, uygulama sürümü | Kayıtta ve her pakette | Rastgele üretilen anonim bir hesap/cihaz kimliği ile ilişkilendirilir. Erişim jetonu sunucuda yalnızca özet olarak saklanır; jetonlar 30 gün geçerlidir ve yenilenir. |
| Kurulum kimliği (rastgele) | Kayıtta | Uygulamanın kurulum başına ürettiği rastgele bir değer. Kayıt yanıtı kaybolursa aynı daveti iki kez harcamamak için kayıt isteğiyle gönderilir. Sunucuda düz hâliyle değil, davet özetiyle birleştirilmiş tek yönlü bir özet olarak saklanır. Telefonda güvenli depoda (Keychain/Keystore) durur; hesabınızı sildiğinizde yenilenir. |
| Tahta kareleri ve zar kırpıkları (JPEG) | Maç kaydı yüklenirken | Yalnızca uygulamanın seçtiği hamle anı kareleri. Kareler tahtanın yanında kazara el, kol, kişi ya da arka plan görüntüsü içerebilir. |
| Kalibrasyon ve paket üst verisi | Maç kaydı yüklenirken | Tahta köşeleri, geometri, olay zamanları, kamera bilgisi, uygulama sürümü, paket bütünlük özetleri. |
| Maç bilgisi: maç uzunluğu, skor, oyuncu adları | Siz girip onaylarsanız | Oyuncu adlarını yazmak zorunlu değildir; gerçek ad yazmayabilirsiniz. |
| Sonuçlar | Sunucu işledikten sonra | Hamle dökümü, analiz çıktıları ve dışa aktarılan dosyalar. |
| Teknik sunucu kayıtları | Her istekte | IP adresi, zaman, istenen yol (maç ve yükleme kimlikleri geçer), durum kodu ve kullanıcı aracısı bilgisi. İşletme ve kötüye kullanımı önleme içindir. Kayıt sınırlaması için IP adresi ayrıca bellekte kısa süre tutulur. |
Uygulama, her maç kaydının paketini (seçilmiş kareler, zar kırpıkları, üst veri) telefonunuza da yazar. Android'de bu paketler yalnızca uygulamanın özel alanındadır. iOS'ta kayıt paketleri cihazdaki Dosyalar uygulamasında, Tavla Capture klasörü altında görünür ve oradan dışarı aktarılabilir; uygulamayı silmek bunları da siler.
Verilerinizi satmayız, reklam için kullanmayız ve profil çıkarmayız.
Sunucu, Oracle Cloud Infrastructure'ın Almanya (Frankfurt) bölgesindeki bir sanal makinededir. Oracle, altyapıyı sağlayan hizmet sağlayıcımızdır; Oracle ABD merkezli bir şirkettir ancak veriler bu bölgede tutulur. HTTPS sertifikası Let's Encrypt/ZeroSSL tarafından verilir; bu kuruluşlar yalnızca alan adını görür, sizin verinizi görmez. Alan adı sslip.io gibi bir ücretsiz DNS hizmeti üzerinden çözülüyorsa, o hizmet yalnızca alan adı sorgusunu görür. Bunun dışında verileri üçüncü kişilerle paylaşmayız; yalnızca yasal bir zorunluluk varsa yetkili mercilere bildirim yapılabilir.
| Veri | Süre |
|---|---|
| Yüklenen kareler, kırpıklar ve paket dosyaları (nesne deposu) | Commit tarihinden itibaren 30 gün (davetli erken erişim, ücretsiz ve temel plan; pro plan 90 gün, bu sürümde satılmıyor), sonra sunucudaki temizlik görevi siler. Commit edilmemiş (terk edilmiş) yüklemeler, son işlemden itibaren 7 gün sonra silinir. Aktif bir işi olan maç, iş bitene dek silinmez. |
| Sonuçlar (hamle dökümü, analiz), maç kayıtları ve hesap/cihaz kayıtları | Otomatik silme süresi tanımlı değildir: siz silene kadar tutulur. Hesabınızı uygulamadan (Ayarlar › Hesap › Hesabımı ve verilerimi sil) ya da e-postayla silebilirsiniz (bkz. Hesap silme). Yüklenen kareler 30 gün sonra silinse de bu sonuçlar kalır. |
| İşlem sırasında sunucunun çalışma alanına indirilen ham kare kopyaları | Yüklenen karelerle AYNI süre dolunca (30 gün; pro plan 90 gün) temizlik görevi siler; kopya, maçın yüklendiği tarihten itibaren sayılır. Kuyruktaki ya da çalışan bir işin kopyalarına dokunulmaz. |
| Dışa aktarılan dosyalar (.mat, .txt) ve işlem sırasında oluşan küçük sonuç/ara dosyalar (kare içermez) | Otomatik silme süresi tanımlı değildir; hesabınızı sildiğinizde silinir. |
| Erişim jetonları | 30 gün geçerlidir (yenilenir; yenileme penceresi 90 gün). Çıkış yaptığınızda bu telefonun jetonları iptal edilir; iptal edilmiş jetonların özetleri hesabınız silinene kadar sunucuda kalabilir. |
| Kullanım sayaçları (hesaba bağlı olanlar hesap silinince hemen silinir) | 35 gün. |
| Davet kodu kaydı | Hesap silinse de kalır (kodun özeti, bizim girdiğimiz etiket, kullanım sayısı); hesabınızla bağlantısı silinir. |
| Silme kaydı (makbuz) | Hesap silindiğinde, kişiye bağlanamayan bir kayıt kalır: rastgele kimlik, tarihler ve silinen kayıt sayıları. Süresiz tutulur. |
| Sunucu erişim kayıtları (IP dahil) | Boyuta göre döngüsel silinir (az kullanımda yaklaşık birkaç hafta). |
| Yedekler | Gecelik yedekler 7 gün saklanır; sildiğiniz veri yedeklerden en geç 7 gün içinde düşer. Çalışma alanındaki ham kare kopyaları yedeğe alınmaz. Bir yedekten geri yükleme gerekirse, yedekten sonra sildiğiniz hesaplar geri gelmez: geri yüklemeden hemen sonra aşağıdaki silme defterine bakılarak yeniden silinirler. |
| Silme defteri (yedekten geri yüklemede silinmiş hesabın geri gelmemesi için) | Silinen hesabın rastgele kimliğinin tek yönlü, sunucuya özgü anahtarla üretilmiş özeti ve silme günü. Ad, e-posta, cihaz ya da içerik bilgisi taşımaz; kişiye bağlanamaz, geri çözülemez. Yedeklerden ayrı bir dosyada, süresiz tutulur. |
Uygulama ile sunucu arasındaki iletişim HTTPS ile şifrelenir. Cihaz jetonları ve davet kodları sunucuda özet olarak saklanır. Sunucu diski Oracle'ın varsayılan disk şifrelemesinden yararlanır. Hiçbir sistem tam güvenli değildir; bu, davetli erken erişimdeki bir hizmettir.
Bulunduğunuz yerin mevzuatına (ör. KVKK, GDPR) bağlı olarak verilerinize erişme, düzeltme, silme ve işlenmesine itiraz etme hakkınız olabilir. Talebinizi cemgnr46@gmail.com adresine iletin; silme için uygulamada Ayarlar › Hesap › Hesabımı ve verilerimi sil'i kullanın ya da Hesap silme sayfasındaki adımları izleyin. Talepleri en geç 30 gün içinde yanıtlamayı hedefliyoruz.
Tavla Capture 18 yaş altındaki kişilere yönelik değildir; 18 yaşın altındaki kişilerden bilerek veri toplamayız.
Bu metin değiştiğinde tarihi yukarıda güncellenir; önemli değişiklikleri uygulamada duyururuz.
Bu metin hukuki danışmanlık değildir; uygulamanın gerçekte yaptığı veri işlemelerini sade bir dille anlatmak için yazılmıştır.
Last updated: 10 October 2026 · Version: invite-only early access 1
Tavla Capture is run by an individual developer during invite-only early access. For anything about your data: cemgnr46@gmail.com
| Data | When | Note |
|---|---|---|
| Invite code | At registration | The server stores only a hash of the code, not the code itself. The invite record may carry a label that we typed (e.g. a person or team name). |
| Device registration: platform (iOS/Android), device model, OS version, app version | At registration and in each package | Linked to a randomly generated anonymous account/device ID. The access token is stored only as a hash; tokens are valid for 30 days and are refreshed. |
| Install ID (random) | At registration | A random value the app generates once per installation. It is sent with the registration request so that a lost reply does not spend the same invite twice. The server stores it only as a one-way digest combined with the invite digest, not in plain form. On the phone it sits in secure storage (Keychain/Keystore) and is replaced when you delete your account. |
| Board frames and dice crops (JPEG) | When a match recording is uploaded | Only the move-moment frames the app selects. Frames may incidentally show a hand, arm, person or background next to the board. |
| Calibration and package metadata | When a match recording is uploaded | Board corners, geometry, event times, camera information, app version, package integrity digests. |
| Match information: match length, score, player names | If you enter and confirm them | Entering player names is optional; you do not have to use real names. |
| Results | After the server processes the upload | Move record, analysis output and exported files. |
| Technical server logs | Every request | IP address, time, requested path (contains match and upload IDs), status code and user-agent. Used for operations and abuse prevention. For rate limiting, the IP address is also held briefly in memory. |
The app also writes each match recording's package (selected frames, dice crops, metadata) to your phone. On Android these packages live only in the app's private area. On iOS the recording packages are visible on the device in the Files app, under the Tavla Capture folder, and can be exported from there; deleting the app also deletes them.
We do not sell your data, use it for advertising or build profiles.
The server is a virtual machine in Oracle Cloud Infrastructure's Germany (Frankfurt) region. Oracle is our infrastructure provider; Oracle is a US company, but the data is kept in this region. The HTTPS certificate is issued by Let's Encrypt/ZeroSSL, which see only the domain name, not your data. If the domain is resolved through a free DNS service such as sslip.io, that service sees only the domain lookup. We do not otherwise share data with third parties, except where authorities lawfully require it.
| Data | Retention |
|---|---|
| Uploaded frames, crops and package files (object storage) | 30 days from the commit date (invite-only early access, free and basic plans; pro plan 90 days, not sold in this version), then the server's cleanup job deletes them. Uncommitted (abandoned) uploads are deleted after 7 days from their last activity. A match with an active job is not deleted until the job ends. |
| Results (move record, analysis), match records and account/device records | No automatic expiry is defined: they are kept until you delete them. You can delete your account from the app (Settings › Account › Delete my account and data) or by e-mail (see Delete account). These results remain even after the uploaded frames are deleted at 30 days. |
| Raw frame copies downloaded into the server's working area during processing | Deleted by the cleanup job when the SAME period as the uploaded frames ends (30 days; pro plan 90 days), counted from the date the match was uploaded. Copies of a queued or running job are never touched. |
| Exported files (.mat, .txt) and small result/intermediate files made during processing (they contain no frames) | No automatic expiry is defined; they are deleted when you delete your account. |
| Access tokens | Valid for 30 days (renewed; the renewal window is 90 days). Logging out revokes this phone's tokens; digests of revoked tokens may stay on the server until your account is deleted. |
| Usage counters (account-linked ones are deleted immediately when the account is deleted) | 35 days. |
| Invite code record | Remains after account deletion (a digest of the code, a label we typed, its use count); its link to your account is deleted. |
| Deletion record (receipt) | When an account is deleted, a record that cannot be linked to a person remains: a random identifier, dates and the number of deleted records. It is kept indefinitely. |
| Server access logs (including IP) | Rotated by size (roughly a few weeks at low usage). |
| Backups | Nightly backups are kept for 7 days; data you have deleted drops out of backups within 7 days. Raw frame copies in the working area are not included in backups. If a backup has to be restored, accounts you deleted after that backup do not come back: right after the restore they are deleted again using the deletion ledger below. |
| Deletion ledger (so a deleted account does not return when a backup is restored) | A one-way digest of the deleted account's random ID, made with a server-specific key, and the deletion date. It carries no name, e-mail, device or content data; it cannot be linked to a person or reversed. Kept indefinitely in a file separate from the backups. |
Communication between the app and the server is encrypted with HTTPS. Device tokens and invite codes are stored as hashes. The server disk uses Oracle's default disk encryption. No system is perfectly secure; this service is in invite-only early access.
Depending on where you live (e.g. GDPR, Turkish KVKK) you may have the right to access, correct, delete your data and to object to its processing. Send your request to cemgnr46@gmail.com; for deletion use Settings › Account › Delete my account and data in the app or follow the steps on the Delete account page. We aim to answer requests within 30 days.
Tavla Capture is not directed at anyone under 18; we do not knowingly collect data from anyone under 18.
When this text changes the date above is updated and we announce significant changes in the app.
This text is not legal advice; it is written to describe in plain language what the app actually does with data.